Bugzilla – Bug 1059770
VUL-2: CVE-2017-14625: ImageMagick: ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability
Last modified: 2017-10-10 09:39:20 UTC
CVE-2017-14625 ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_output_create in coders/sixel.c. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-14625 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-14625 https://github.com/ImageMagick/ImageMagick/issues/721
NULL ptr deref would also be a controlled abort.
Factory only
And factory is fixed. GraphicsMagick is not affected.